I-D Action: draft-nslag-mpls-deprecate-md5-03.txt
internet-drafts@ietf.org Mon, 03 September 2018 08:46 UTC
Return-Path: <internet-drafts@ietf.org>
X-Original-To: i-d-announce@ietf.org
Delivered-To: i-d-announce@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id AB2251252B7 for <i-d-announce@ietf.org>; Mon, 3 Sep 2018 01:46:34 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: internet-drafts@ietf.org
To: i-d-announce@ietf.org
Subject: I-D Action: draft-nslag-mpls-deprecate-md5-03.txt
X-Test-IDTracker: no
X-IETF-IDTracker: 6.83.1
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <153596439459.13433.4114737600351270163@ietfa.amsl.com>
Date: Mon, 03 Sep 2018 01:46:34 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/i-d-announce/pZxBCWOyFaTPaFBzrSfErdOjNv8>
X-BeenThere: i-d-announce@ietf.org
X-Mailman-Version: 2.1.27
List-Id: Internet Draft Announcements only <i-d-announce.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/i-d-announce>, <mailto:i-d-announce-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/i-d-announce/>
List-Post: <mailto:i-d-announce@ietf.org>
List-Help: <mailto:i-d-announce-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/i-d-announce>, <mailto:i-d-announce-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 03 Sep 2018 08:46:35 -0000
A New Internet-Draft is available from the on-line Internet-Drafts directories. Title : Deprecating MD5 for LDP Authors : Loa Andersson Stewart Bryant Andrew G. Malis Nicolai Leymann George Swallow Filename : draft-nslag-mpls-deprecate-md5-03.txt Pages : 7 Date : 2018-09-03 Abstract: When the MPLS Label Distribution Protocol (LDP) was specified circa 1999, there were very strong requirements that LDP should use a cryptographic hash function to sign LDP protocol messages. MD5 was widely used at that time, and was the obvious choices. However, even when this decision was being taken there were concerns as to whether MD5 was a strong enough signing option. This discussion was briefly reflected in section 5.1 of RFC 5036 [RFC5036] (and also in RFC 3036 [RFC3036]). Over time it has been shown that MD5 can be compromised. Thus, there is a concern shared in the security community and the working groups responsible for the development of the LDP protocol that LDP is no longer adequately secured. This document deprecates MD5 as the signing method for LDP messages. The document also selects a future method to secure LDP messages - the choice is TCP-AO. In addition, we specify that the TBD cryptographic mechanism is to be the default TCP-AO security method. The IETF datatracker status page for this draft is: https://datatracker.ietf.org/doc/draft-nslag-mpls-deprecate-md5/ There are also htmlized versions available at: https://tools.ietf.org/html/draft-nslag-mpls-deprecate-md5-03 https://datatracker.ietf.org/doc/html/draft-nslag-mpls-deprecate-md5-03 A diff from the previous version is available at: https://www.ietf.org/rfcdiff?url2=draft-nslag-mpls-deprecate-md5-03 Please note that it may take a couple of minutes from the time of submission until the htmlized version and diff are available at tools.ietf.org. Internet-Drafts are also available by anonymous FTP at: ftp://ftp.ietf.org/internet-drafts/
- I-D Action: draft-nslag-mpls-deprecate-md5-03.txt internet-drafts